Malicious PDF — malware analysis report

Static analysis result for SHA-256 c9486edb6117b29d…

MALICIOUS

PDF

21.8 KB Created: 2019-04-30 01:57:11 +01:00 Authoring application: mPDF 5.7
MD5: 2b1124458ffe307940d77daac976e6a0 SHA-1: 8b2f1de421b763dbd699bc4a821edf232b6f4b73 SHA-256: c9486edb6117b29d5df063c1d8b2137e0f8e8f90dcd4be0a90029dfaa57bd359
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of external links, identified as a link farm. While the specific URLs point to benign-looking book titles, the sheer volume and the heuristic firing of PDF_SEO_LINK_FARM indicate a malicious intent to direct users to a large number of external resources. The ML classifier also strongly flagged this PDF as malicious. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9925

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/5090094090094091/Rhythm-and-Resistance-Teaching-Poetry-for-Social-Justice-by-Linda-Christensen.pdf
    • http://loaminoo.linkpc.net/5090094090096094/Teaching-for-Joy-and-Justice-Re-Imagining-the-Language-Arts-Classroom-by-Linda-Christensen.pdf
    • http://loaminoo.linkpc.net/7093091091096097/Living-Justice-And-Peace-Catholic-Social-Teaching-In-Practice-by-Jerry-Windley-Daoust.pdf
    • http://loaminoo.linkpc.net/5091097094097096/The-Art-of-Syntax-Rhythm-of-Thought-Rhythm-of-Song-by-Ellen-Bryant-Voigt.pdf
    • http://loaminoo.linkpc.net/5096098091090096/Seductive-resistance-the-poetry-of-Th-ophile-Gautier-by-Constance-Gosselin-Schick.pdf
    • http://loaminoo.linkpc.net/5092091099098092/Revolting-Subjects-Social-Abjection-and-Resistance-in-Neoliberal-Britain-by-Imogen-Tyler.pdf
    • http://loaminoo.linkpc.net/5096095095099099/Catholic-Social-Teaching-Our-Best-Kept-Secret-by-Peter-J-Henriot.pdf
    • http://loaminoo.linkpc.net/9092096095092090/Rose-Where-Did-You-Get-That-Red-Teaching-Great-Poetry-to-Children-by-Kenneth-Koch.pdf
    • http://loaminoo.linkpc.net/1098099098090091/Teaching-Your-Children-Values-by-Linda-Eyre.pdf
    • http://loaminoo.linkpc.net/1091091091097095095/Kids-Poems-Grades-3-4-Teaching-Third-and-Fourth-Graders-to-Love-Writing-Poetry-by-Regie-Routman.pdf
    • http://loaminoo.linkpc.net/1090094098098091/Social-Justice-And-The-City-by-David-Harvey.pdf
    • http://loaminoo.linkpc.net/6099098099099097/Young-Citizens-of-the-World-Teaching-Elementary-Social-Studies-through-Civic-Engagement-by-Marilynne-Boyle-Baise.pdf
    • http://loaminoo.linkpc.net/6099098099094095/Social-Studies-for-the-Twenty-First-Century-Methods-and-Materials-for-Teaching-in-Middle-and-Secondary-Schools-3rd-Edition-by-Jack-Zevin.pdf
    • http://loaminoo.linkpc.net/7091096093097093/The-Vocation-of-Business-Social-Justice-in-the-Marketplace-by-John-C-Medaille.pdf
    • http://loaminoo.linkpc.net/1098095099090093/My-Mantelpiece-A-Memoir-of-Survival-and-Social-Justice-by-Carolyn-Goodman.pdf
    • http://loaminoo.linkpc.net/6092099092092097/The-Browning-of-America-and-the-Evasion-of-Social-Justice-by-Ronald-R-Sundstrom.pdf
    • http://loaminoo.linkpc.net/1090090095098095099/Meter-Rhythm-And-Performance-Metrum-Rhythmus-Performanz-by-Rhythm-and-Performance-1999-vech-International-Conference-on-Meter.pdf
    • http://loaminoo.linkpc.net/3095093090098095/Revolutionizing-Pedagogy-Education-for-Social-Justice-Within-and-Beyond-Global-Neo-Liberalism-by-Sheila-Macrine.pdf
    • http://loaminoo.linkpc.net/1090090097090091097/Two-Sisters-for-Social-Justice-A-BIOGRAPHY-OF-GRACE-AND-EDITH-ABBOTT-by-Lela-B-Costin.pdf
    • http://loaminoo.linkpc.net/4099099090090093/Advocacy-for-Social-Justice-A-Global-Action-and-Reflection-Guide-by-David-Cohen.pdf